NetBSD/pkgsrc VndpcOvdoc CHANGES-2026

   doc: Updated editors/vim-share to 9.2.0707
VersionDeltaFile
1.3925+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc J9AySdbeditors/vim-share distinfo PLIST

   Update to version 9.2.0707.

   Changes:
   - patch 9.2.0707: completion: popup misplaced when text before it is concealed
   - runtime(doc): document Solaris as supported OS
   - runtime(dtrace): handle DTrace probe highlighting before action blocks
   - patch 9.2.0706: tests: test_terminal3 may fail when $SHELL is zsh
   - runtime(beancount): Add support for non-ASCII account names
   - patch 9.2.0705: :delete # silently fails to update "# and clobbers "0
   - patch 9.2.0704: GTK4: not handling mouse events
   - patch 9.2.0703: session file does not store relative Vim9 autoload imports
   - patch 9.2.0702: :windo and :tabdo create an extra window with 'winfixbuf'
   - runtime(fennel): Update Last Update header
   - runtime(fennel): add more ";" comment leaders to 'comments'
   - patch 9.2.0701: tests: test_terminal.vim does not wait for job to finish
   - patch 9.2.0700: configure: -lrt requirement for timer_create not detected
   - nsis: Remove NSIS Installer Code
   - patch 9.2.0699: [security]: possible code execution with python complete
   - patch 9.2.0698: [security]: Out-of-bounds write with soundfold()

    [122 lines not shown]
VersionDeltaFile
1.240+4-4editors/vim-share/distinfo
1.92+7-0editors/vim-share/PLIST
1.176+2-2editors/vim-share/version.mk
+13-63 files

NetBSD/src SmlCeGstests/net/if_wg t_misc.sh

   wg(4): Add a test case for too many allowed IP address ranges.

   PR kern/60232: kernel panic when adding a wireguard peer with too
   many allowed IP addresses
VersionDeltaFile
1.17+67-1tests/net/if_wg/t_misc.sh
+67-11 files

NetBSD/pkgsrc-wip e456eabbup-git distinfo Makefile

bup-git: Advance along upstream main

This is still a 0.34 pre-alpha
DeltaFile
+3-3bup-git/distinfo
+2-2bup-git/Makefile
+0-1bup-git/DESCR
+5-63 files

NetBSD/src 5Xmuiqvtests/net/if_wg t_basic.sh common.sh

   wg(4): Add test case for bad ephemeral handshake public keys.

   wg(4) should not crash on an assertion if they appear on the network;
   it should just gracefully drop them as forgeries, if a MITM attempted
   to send them without knowledge of a peer's public key, or accept
   them, if a peer legitimately sent them, since that peer could just as
   well simply forward the plaintext of the session on to the NSA.

   PR kern/60106: wg(4) should properly handle invalid or insecure
   ephemeral Curve25119 public keys
VersionDeltaFile
1.8+172-2tests/net/if_wg/t_basic.sh
1.2+36-1tests/net/if_wg/common.sh
+208-32 files

NetBSD/src jDwRwQ8tests/net/if_wg t_basic.sh

   wg(4): Add test case for bad peer public keys.

   wg(4) should not crash on an assertion if they are used -- it should
   just gracefully accept them, with degraded security, since a peer
   that maliciously provides an invalid public key is no worse than a
   peer that voluntarily exposes all its plaintext anyway.

   PR kern/60106: wg(4) should properly handle invalid or insecure
   ephemeral Curve25119 public keys
VersionDeltaFile
1.7+81-1tests/net/if_wg/t_basic.sh
+81-11 files

NetBSD/pkgsrc-wip 18d96depy-keras TODO

py-keras: Add reference to CVE-2026-12479
DeltaFile
+1-1py-keras/TODO
+1-11 files

NetBSD/pkgsrc rSlTnCBdoc CHANGES-2026

   doc: Updated sysutils/restic to 0.19.0nb1
VersionDeltaFile
1.3924+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc mSBg6ofsysutils/restic distinfo Makefile, sysutils/restic/patches patch-cmd_restic_cmd__stats.go patch-cmd_restic_cmd__stats__test.go

   restic: merge upstream patch

   for "stats: hide progress bar for json output" to make --json
   output JSON only.

   Bump PKGREVISION.
VersionDeltaFile
1.1+44-0sysutils/restic/patches/patch-cmd_restic_cmd__stats.go
1.1+30-0sysutils/restic/patches/patch-cmd_restic_cmd__stats__test.go
1.21+3-1sysutils/restic/distinfo
1.77+2-1sysutils/restic/Makefile
+79-24 files

NetBSD/pkgsrc-wip 70a5784. Makefile

Fix space/tab issue
DeltaFile
+1-1Makefile
+1-11 files

NetBSD/pkgsrc aMonkCItime/R-nanotime Makefile distinfo, time/R-nanotime/patches patch-src_Makevars

   (time/R-nanotime) fix  -lexecinfo active/disable logic (by SUBST)
VersionDeltaFile
1.2+4-10time/R-nanotime/patches/patch-src_Makevars
1.5+12-2time/R-nanotime/Makefile
1.5+2-2time/R-nanotime/distinfo
+18-143 files

NetBSD/pkgsrc bNllikAdevel/libffi Makefile distinfo, devel/libffi/patches patch-testsuite_lib_libffi.exp

   libffi: add upstream patch fixing the two broken tests
VersionDeltaFile
1.1+24-0devel/libffi/patches/patch-testsuite_lib_libffi.exp
1.59+1-6devel/libffi/Makefile
1.70+2-1devel/libffi/distinfo
+27-73 files

NetBSD/pkgsrc hEII8v5doc CHANGES-2026

   doc: lint CHANGES-2026.

   pkglint is pointing out some updates appeared as downgrades due to change
   in versioning scheme. Some duplicates.
VersionDeltaFile
1.3923+8-26doc/CHANGES-2026
+8-261 files

NetBSD/pkgsrc-wip d3ae2ba. Makefile, di COMMIT_MSG Makefile

di: Update to 6.2.2.2 (pkg/59938)
DeltaFile
+37-0di/COMMIT_MSG
+18-0di/Makefile
+14-0di/PLIST
+5-0di/distinfo
+5-0di/DESCR
+1-0Makefile
+80-06 files

NetBSD/pkgsrc-wip 21c35ccCodeWhale distinfo cargo-depends.mk

Update misc/CodeWhale to 0.8.64
DeltaFile
+39-48CodeWhale/distinfo
+12-15CodeWhale/cargo-depends.mk
+2-4CodeWhale/COMMIT_MSG
+1-1CodeWhale/Makefile
+54-684 files

NetBSD/src QQYcyjtsys/arch/arm/altera cycv_gmac.c, sys/arch/arm/rockchip rk_gmac.c

   Break out and expand FDT property parsing for awge(4) FDT attachment
   frontends

   This uses the device tree's possible burst length bus interface settings,
   and improves performance on, for instance, Rockchip RK3399
VersionDeltaFile
1.1+63-0sys/dev/fdt/dwc_gmac_fdt_subr.c
1.102+13-5sys/dev/ic/dwc_gmac.c
1.24+5-7sys/arch/arm/rockchip/rk_gmac.c
1.23+8-1sys/dev/ic/dwc_gmac_var.h
1.12+5-2sys/arch/arm/sunxi/sunxi_gmac.c
1.8+5-2sys/arch/arm/altera/cycv_gmac.c
+99-177 files not shown
+122-2813 files

NetBSD/pkgsrc qptKg3adoc CHANGES-2026

   doc: Updated cad/py-PyRTL to 1.0.0
VersionDeltaFile
1.3922+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc ldsETYecad/py-PyRTL PLIST distinfo, cad/py-PyRTL/patches patch-pyrtl_simulation.py

   cad/py-PyRTL: Update to 1.0.0

   Changelog:
   1.0.0:
   Added

     * PyRTL Floating point library (@gaborszita)
     * Registers can be constructed with a State IntEnum to simplify construction
       of state machines.

   Changed

     * Improved CompiledSimulation's performance.
     * output_to_verilog now supports custom module_names. (@devmam999)
     * Minor improvements to wire_struct and wire_matrix.
     * Minor improvements to WaveDrom output.
     * Many documentation improvements.

   Fixed

    [4 lines not shown]
VersionDeltaFile
1.6+15-0cad/py-PyRTL/PLIST
1.14+4-5cad/py-PyRTL/distinfo
1.15+2-6cad/py-PyRTL/Makefile
1.2+1-1cad/py-PyRTL/patches/patch-pyrtl_simulation.py
+22-124 files

NetBSD/pkgsrc xL3Q6Mzdoc CHANGES-2026

   doc: Updated security/gnupg2 to 2.5.20nb2
VersionDeltaFile
1.3921+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc bx6ZZsWsecurity/gnupg2 Makefile distinfo, security/gnupg2/patches patch-sm_decrypt.c

   gnupg2: add upstream patch for CVE-2026-34182

   Bump PKGREVISION.
VersionDeltaFile
1.1+30-0security/gnupg2/patches/patch-sm_decrypt.c
1.178+2-2security/gnupg2/Makefile
1.98+2-1security/gnupg2/distinfo
+34-33 files

NetBSD/pkgsrc PQAY3gAdoc CHANGES-2026 TODO

   doc: Updated devel/py-filelock to 3.29.4
VersionDeltaFile
1.3920+2-1doc/CHANGES-2026
1.27462+1-2doc/TODO
+3-32 files

NetBSD/pkgsrc maTg4qDdevel/py-filelock Makefile distinfo

   py-filelock: update to 3.29.4.

   What's Changed

       verify inode in break_lock_file before unlinking a stale lock by @dxbjavid in #561
       keep the read/write heartbeat alive on a transient touch error by @dxbjavid in #562
VersionDeltaFile
1.48+5-4devel/py-filelock/Makefile
1.47+4-4devel/py-filelock/distinfo
+9-82 files

NetBSD/pkgsrc q2lBmjslang/python314 DESCR

   python314: fix typo in DESCR, this is 3.14, not 3.13
VersionDeltaFile
1.2+1-1lang/python314/DESCR
+1-11 files

NetBSD/pkgsrc a6VwvL7doc CHANGES-2026

   doc: Updated security/py-cryptography_vectors to 49.0.0
VersionDeltaFile
1.3919+2-1doc/CHANGES-2026
+2-11 files

NetBSD/pkgsrc RpIA4vpsecurity/py-cryptography_vectors distinfo Makefile

   py-cryptography_vectors: update to 49.0.0.

   To match py-cryptography-49.0.0.
VersionDeltaFile
1.80+4-4security/py-cryptography_vectors/distinfo
1.83+2-2security/py-cryptography_vectors/Makefile
1.36+1-2security/py-cryptography_vectors/PLIST
+7-83 files

NetBSD/pkgsrc xJXeGfLdoc CHANGES-2026 TODO

   doc: Updated security/py-cryptography to 49.0.0
VersionDeltaFile
1.3918+2-1doc/CHANGES-2026
1.27461+1-2doc/TODO
+3-32 files

NetBSD/pkgsrc 6QMMhKcsecurity/py-cryptography distinfo cargo-depends.mk

   py-cryptography: update to 49.0.0.

   49.0.0 - 2026-06-12

       BACKWARDS INCOMPATIBLE: Support for x86_64 macOS has been removed. We now only publish arm64 wheels for macOS.
       BACKWARDS INCOMPATIBLE: Support for 32-bit Windows has been removed. Users should move to a 64-bit Python installation.
       BACKWARDS INCOMPATIBLE: Removed the deprecated PUBLIC_KEY_TYPES, PRIVATE_KEY_TYPES, CERTIFICATE_PRIVATE_KEY_TYPES, CERTIFICATE_ISSUER_PUBLIC_KEY_TYPES, and CERTIFICATE_PUBLIC_KEY_TYPES type aliases. Use PublicKeyTypes, PrivateKeyTypes, CertificateIssuerPrivateKeyTypes, CertificateIssuerPublicKeyTypes, and CertificatePublicKeyTypes instead. These were deprecated in version 40.0.
       BACKWARDS INCOMPATIBLE: :class:`~cryptography.hazmat.primitives.ciphers.algorithms.ChaCha20` now treats the first 4 bytes of the nonce as a 32-bit little-endian block counter (as defined in RFC 7539) and tracks the number of bytes processed. Attempting to encrypt or decrypt more data than the counter allows before it would overflow now raises a :class:`ValueError` rather than silently diverging from RFC 7539. Setting the counter portion of the nonce to zero allows encrypting up to 256 GiB with a given nonce.
       BACKWARDS INCOMPATIBLE: Loading an X.509 certificate whose ECDSA or DSA signature AlgorithmIdentifier contains encoded NULL parameters now raises a :class:`ValueError`. Such certificates are invalid, but older versions of Java emitted them; previously they loaded with a deprecation warning.
       Fixed cross-compilation of the CFFI bindings when PYO3_CROSS_LIB_DIR is set. The build now derives the Python include directory from PYO3_CROSS_LIB_DIR instead of querying the host interpreter, which previously caused the build to fail during cross-compilations for embedded systems, on hosts which have same-version Python development headers installed as the target Python.
       Added support for signing and verifying X.509 certificates, certificate signing requests, and certificate revocation lists with :doc:`/hazmat/primitives/asymmetric/mldsa` keys, as well as loading certificates that contain ML-DSA public keys.
       Added :meth:`~cryptography.hazmat.primitives.hpke.KEM.enc_length` to :class:`~cryptography.hazmat.primitives.hpke.KEM` so callers can split the encapsulated key from the ciphertext returned by :meth:`~cryptography.hazmat.primitives.hpke.Suite.encrypt`.
       :meth:`~cryptography.x509.verification.ExtensionPolicy.require_present`, :meth:`~cryptography.x509.verification.ExtensionPolicy.may_be_present`, and :meth:`~cryptography.x509.verification.ExtensionPolicy.require_not_present` now accept any extension type. Previously only a fixed set of extension types was supported, which made it impossible to account for otherwise unrecognized critical extensions during path validation.
       Added support for using :class:`~cryptography.x509.Certificate`, :class:`~cryptography.x509.CertificateSigningRequest`, and :class:`~cryptography.x509.CertificateRevocationList` as field types in :doc:`/hazmat/asn1/index` structures.
       Added :func:`~cryptography.hazmat.asn1.value_set`, a class decorator that registers an :class:`enum.Enum` subclass as an ASN.1 value set: members are encoded as their underlying value, and decoding fails if the decoded value does not match one of the declared members.
       Added :meth:`~cryptography.x509.Name.from_bytes` for parsing a :class:`~cryptography.x509.Name` from DER bytes, the inverse of :meth:`~cryptography.x509.Name.public_bytes`.
       Added the rsa_padding keyword-only parameter to :meth:`~cryptography.x509.CertificateBuilder.public_key`. Passing the :class:`~cryptography.hazmat.primitives.asymmetric.padding.PSS` class (not an instance) encodes an RSA subject public key in the certificate's subjectPublicKeyInfo with the id-RSASSA-PSS OID and no parameters.
       Added external mu (message representative) support to :doc:`/hazmat/primitives/asymmetric/mldsa` via the sign_mu and verify_mu methods, which sign and verify a precomputed 64-byte mu as defined in FIPS 204.
VersionDeltaFile
1.119+34-34security/py-cryptography/distinfo
1.25+10-10security/py-cryptography/cargo-depends.mk
1.147+2-2security/py-cryptography/Makefile
+46-463 files

NetBSD/pkgsrc qYwaiEYdoc CHANGES-2026 TODO

   doc: Updated security/py-OpenSSL to 26.3.0
VersionDeltaFile
1.3917+2-1doc/CHANGES-2026
1.27460+1-2doc/TODO
+3-32 files

NetBSD/pkgsrc xxFeJFesecurity/py-OpenSSL Makefile distinfo

   py-OpenSSL: update to 26.3.0.


   Backward-incompatible changes:

       Dropped support for Python 3.8.

       The minimum cryptography version is now 49.0.0.

       Removed deprecated OpenSSL.crypto.X509Req, OpenSSL.crypto.dump_certificate_request, and OpenSSL.crypto.load_certificate_request. cryptography.x509 should be used instead.

       OpenSSL.SSL.Connection.set_session now raises ValueError if the Session was obtained from a Connection that was using a different Context than this one. OpenSSL requires (but does not verify) that sessions only be re-used with a compatible SSL_CTX, so this contract is now enforced.

   Deprecations:

       Deprecated OpenSSL.crypto.PKey.generate_key and OpenSSL.crypto.PKey.check. The key generation and loading APIs in cryptography should be used instead.

       Deprecated OpenSSL.crypto.dump_privatekey. The serialization APIs on cryptography private key types should be used instead.


    [9 lines not shown]
VersionDeltaFile
1.82+5-5security/py-OpenSSL/Makefile
1.43+4-4security/py-OpenSSL/distinfo
+9-92 files

NetBSD/pkgsrc 9QOsgjEaudio/libilbc Makefile, audio/mixxx Makefile

   *: bump for abseil May 20260526.0 shlib version bump
VersionDeltaFile
1.18+2-2devel/protobuf-c/buildlink3.mk
1.9+2-2audio/libilbc/Makefile
1.85+2-2audio/mixxx/Makefile
1.28+2-2biology/plinkseq/Makefile
1.63+2-2chat/dino/Makefile
1.95+2-2chat/ekg/Makefile
+12-1267 files not shown
+146-12573 files